Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0707
Description:SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0707
BugTraq ID: 10698
http://www.securityfocus.com/bid/10698
Bugtraq: 20040710 [BUGZILLA] Multiple vulnerabilities in Bugzilla 2.16.5 and 2.17.7 (Google Search)
http://marc.info/?l=bugtraq&m=108965446813639&w=2
XForce ISS Database: bugzilla-editusers-sql-injection(16668)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16668




© 1998-2024 E-Soft Inc. All rights reserved.